Vulnerabilities > Incorrect Permission Assignment for Critical Resource

DATE CVE VULNERABILITY TITLE RISK
2023-01-27 CVE-2022-44715 Incorrect Permission Assignment for Critical Resource vulnerability in Netscout Ngeniusone 6.3.2
Improper File Permissions in NetScout nGeniusONE 6.3.2 build 904 allows authenticated remote users to gain permissions via a crafted payload.
network
low complexity
netscout CWE-732
8.8
2023-01-26 CVE-2022-44263 Incorrect Permission Assignment for Critical Resource vulnerability in Dentsplysirona Sidexis 4.2/4.3
Dentsply Sirona Sidexis <= 4.3 is vulnerable to Incorrect Access Control.
local
low complexity
dentsplysirona CWE-732
7.8
2023-01-26 CVE-2023-23610 Incorrect Permission Assignment for Critical Resource vulnerability in Glpi-Project Glpi
GLPI is a Free Asset and IT Management Software package.
network
low complexity
glpi-project CWE-732
6.5
2023-01-18 CVE-2023-22592 Incorrect Permission Assignment for Critical Resource vulnerability in IBM Robotic Process Automation for Cloud PAK
IBM Robotic Process Automation for Cloud Pak 21.0.1 through 21.0.4 could allow a local user to perform unauthorized actions due to insufficient permission settings.
local
low complexity
ibm CWE-732
7.8
2023-01-18 CVE-2022-34457 Incorrect Permission Assignment for Critical Resource vulnerability in Dell Command|Configure
Dell command configuration, version 4.8 and prior, contains improper folder permission when installed not to default path but to non-secured path which leads to privilege escalation.
local
low complexity
dell CWE-732
7.8
2023-01-13 CVE-2022-48257 Incorrect Permission Assignment for Critical Resource vulnerability in Eternal Terminal Project Eternal Terminal 6.2.1
In Eternal Terminal 6.2.1, etserver and etclient have predictable logfile names in /tmp.
network
low complexity
eternal-terminal-project CWE-732
5.3
2023-01-12 CVE-2022-39186 Incorrect Permission Assignment for Critical Resource vulnerability in Exfo Bv-10 Firmware
EXFO - BV-10 Performance Endpoint Unit misconfiguration.
local
low complexity
exfo CWE-732
5.5
2023-01-12 CVE-2022-47927 Incorrect Permission Assignment for Critical Resource vulnerability in multiple products
An issue was discovered in MediaWiki before 1.35.9, 1.36.x through 1.38.x before 1.38.5, and 1.39.x before 1.39.1.
local
low complexity
mediawiki fedoraproject CWE-732
5.5
2022-12-21 CVE-2022-4630 Incorrect Permission Assignment for Critical Resource vulnerability in Daloradius
Sensitive Cookie Without 'HttpOnly' Flag in GitHub repository lirantal/daloradius prior to master.
network
low complexity
daloradius CWE-732
5.3
2022-12-21 CVE-2022-42949 Incorrect Permission Assignment for Critical Resource vulnerability in Silverstripe Subsites
Silverstripe silverstripe/subsites through 2.6.0 has Insecure Permissions.
network
low complexity
silverstripe CWE-732
7.5